[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: How to limit it ?



On Mon, Nov 15, 1999 at 06:25:07PM +0100, Grzegorz Pawel Szostak wrote:
 
> My next problem is how to hide other lines in /etc/passwd file and
> /etc/group ... One user should see only his own line.
> Any ideas ?
> 
> G.


Have you considered using a NIS implementaion?  Setting up a central LDAP server to authenticate your users and services is not too difficult with the pam_ldap and nss_ldap modules.  With a properly setup server, you can set up your user records such that a user can only see their own, and you can then (mostly) dispense with the passwd/shadow files. (you still have accounts you want to be machine-local only though.)

This gives you the added advantage of having a mobile user database that you can use between multiple machines.  Great for ISPs.
-- 
Ooh, look!  It's fluffy!
**
Concerned Citizen
Bryon Roche, Kain <elvnhaqr@bigfoot.com>


Reply to: